lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-Id: <201307021201.r62C1FBE011590@sf01web2.securityfocus.com> Date: Tue, 2 Jul 2013 12:01:15 GMT From: iedb.team@...il.com To: bugtraq@...urityfocus.com Subject: WordPress feed plugin Sql Injection The WordPress feed plugin suffers from a Sql Injection vulnerability. ################################# # Iranian Exploit DataBase # http://exploit.iedb.ir ################################# # Exploit Title : WordPress feed plugin Sql Injection # Author : Iranian Exploit DataBase # Discovered By : IeDb # Email : IeDb.Team@...il.com # Home : http://exploit.iedb.ir # Software Link : http://wordpress.org/ # Security Risk : High # Tested on : Linux # Dork : inurl:wp-content/plugins/feed/ ################################# # Exploit : # http://www.Site.com/wp-content/plugins/feed/news_dt.php?nid=[Sql] # Dem0 : # http://easy2remind.com/newsworld/wp-content/plugins/feed/news_dt.php?nid=257[Sql] ################################# ################################# # Exploit Archive = http://exploit.iedb.ir/exploits-176.html #################################